909 Commits

Author SHA1 Message Date
Kim Klein
c1ae84c81f Task ID 33324832
Fixed primary heading size.
2021-05-24 11:34:24 -07:00
Kim Klein
5e53adc4ef Task ID 33324832
Made 2 recommended edits.
2021-05-24 11:13:53 -07:00
Kim Klein
d8b9743592 Task ID 29550212
Made recommended edit.
2021-05-24 11:09:43 -07:00
Kim Klein
7bd22fdeb3 Delete TOC2.yml 2021-05-21 14:47:28 -07:00
Kim Klein
9de68009d2 Updated select-types-of-rules-to-create
Created a "More information about hashes," and placed it above the "Windows Defender Application Control filename rules" section.
2021-05-20 17:36:16 -07:00
Kim Klein
d2a7d0718f Updated language about explicit allow or deny rules
Clarified language regarding when WDAC calls the cloud to determine a binary's reputation.
2021-05-20 17:15:23 -07:00
Kim Klein
6ae7351524 authorized apps merged configure managed installer
1. Created new page that merged "Authorize apps installed by a managed installer" with Configure a WDAC managed installer.
2. Updated TOC2 with merged file name.
2021-05-20 11:15:00 -07:00
Jordan Geurten
cd644020c1
Update windows/security/threat-protection/windows-defender-application-control/use-signed-policies-to-protect-windows-defender-application-control-against-tampering.md
Co-authored-by: Trond B. Krokli <38162891+illfated@users.noreply.github.com>
2021-05-19 09:15:56 -07:00
Jordan Geurten
8eb663502c
Update windows/security/threat-protection/windows-defender-application-control/use-signed-policies-to-protect-windows-defender-application-control-against-tampering.md
Co-authored-by: JohanFreelancer9 <48568725+JohanFreelancer9@users.noreply.github.com>
2021-05-19 08:43:49 -07:00
jogeurte@microsoft.com
1a5cbd6c59 Small edit of the final binary filename/extension 2021-05-18 16:05:43 -07:00
jogeurte@microsoft.com
5e1be4d679 Updated steps for a signed wdac policy and noted the nuance for uefi lock 2021-05-18 16:02:45 -07:00
jogeurte@microsoft.com
8d499af45e Updated the enforcement doc which has the binary in xml
Additionally, removed a note which is directly under the instructions on how to get the PolicyID.
2021-05-18 15:37:48 -07:00
jogeurte@microsoft.com
878d041fad updated guidance for signed policy deployment in the script md file. #9495 2021-05-18 15:23:52 -07:00
Kim Klein
c04791063c Updated existing pages and merged others
1. Added missing event tags from event-tag-explanations.
2. Corrected MD errors in event-tags and event-id files.
3. Added missing event tag to combined event-id-and-tag file and ensured there are no MD errors.
4. Edited WDAC and AppLocker overview file for grammar.
5. Combined audit WDAC policies file with enforce WDAC policies file.
6. Updated TOC2, which will replace the main TOC.
2021-05-17 17:56:14 -07:00
VARADHARAJAN K
d2ac95dd42
Update windows/security/threat-protection/windows-defender-application-control/applocker/applocker-overview.md
accepted

Co-authored-by: Trond B. Krokli <38162891+illfated@users.noreply.github.com>
2021-05-15 12:54:39 +05:30
VARADHARAJAN K
ecf67c7cab
removed link
as per user report #9518, so i removed security boundary link
2021-05-14 19:16:52 +05:30
Sean Williams [MSFT]
c4a3e588e1
"Disable WDAC Policies": Cleanup formatting
This PR performs a few list/callout-related changes to the article ["Disable Windows Defender Application Control Policies"](https://docs.microsoft.com/en-us/windows/security/threat-protection/windows-defender-application-control/disable-windows-defender-application-control-policies):  
* Move list of WDAC policy locations into "Note" callout referencing them
* Replace boldface "Note"  with DFM `[!NOTE]` tags
2021-05-13 18:13:58 -07:00
Kim Klein
5fa1ea84d4 Event ID and Tags explanation
Merged event IDs and tag explanations into one file. Updated TOC with new link.
2021-05-11 09:47:30 -07:00
Diana Hanson
323a6995bf
Merge branch 'master' into repo_sync_working_branch 2021-05-10 09:53:19 -06:00
Gary Moore
c4a97d04e7
Merge branch 'master' into dansimp-foder-link-fix 2021-05-07 12:56:30 -07:00
Kim Klein
1afb27049f Created new page for Audit and Enforce WDAC
Merged Audit Events and Enforce WDAC policy pages, as well as updated the TOC2.
2021-05-07 11:48:38 -07:00
Trond B. Krokli
6f85cdeb5d
Missing comma added (#9478 follow-up)
Due to the ignored copy review in PR #9478, here is the missing comma.

Ref. commit bc524c8098999c13d2d220f8441187318d569617
2021-05-06 20:54:59 +02:00
Kateyanne
bc524c8098
Merge pull request #9478 from silvermarkg/patch-5
Policy GUID needs clarity
2021-05-06 11:41:35 -07:00
Kim Klein
722f7ee58d Update TOC2.yml
Made a small update.
2021-05-05 16:27:20 -07:00
Kim Klein
aa2b2bb21c Creating Test TOC
This is a test to see how the landing page will look without having changed the original landing page.
2021-05-03 14:31:48 -07:00
jsuther1974
e1dd2d1a68 Update deploy-wdac-policies-with-script.md 2021-04-29 15:32:58 -07:00
Mark Goodman
f9b36a8f76
Policy GUID needs clarity
I think this doc needs some clarity around the Policy GUID value as it is not clear not to include the curly brackets. Although this is shown in the image it can be quite small and difficult to see. I've added a note under the section but there might be a better approach.
2021-04-29 23:04:53 +01:00
ImranHabib
45106d1540
Update windows/security/threat-protection/windows-defender-application-control/event-id-explanations.md
Co-authored-by: Trond B. Krokli <38162891+illfated@users.noreply.github.com>
2021-04-29 17:50:40 +05:00
Thomas Raya
56a1855572
Merge branch 'master' into dansimp-foder-link-fix 2021-04-28 17:53:13 -07:00
ImranHabib
333ab5ae96
addition of note
The event Ids mentioned in this document don't apply to the windows server core edition.

Problem: https://github.com/MicrosoftDocs/windows-itpro-docs/issues/9429
2021-04-29 00:06:31 +05:00
Diana Hanson
8edea9b186
Merge branch 'master' into master 2021-04-26 09:03:15 -06:00
jsuther1974
8c2cd5222b
Update enforce-windows-defender-application-control-policies.md 2021-04-25 12:05:04 -07:00
jsuther1974
08abc8ff4a Update enforce-windows-defender-application-control-policies.md 2021-04-24 10:50:54 -07:00
Thomas Raya
7c0c6476c4
Update plan-windows-defender-application-control-management.md 2021-04-23 16:05:07 -07:00
Daniel Simpson
d416b7a712 Merge branch 'master' into dansimp-foder-link-fix 2021-04-23 09:13:33 -07:00
Gary Moore
b2aac0a97e Removed parenthesis not removed by the converter 2021-04-22 21:56:10 -07:00
Gary Moore
94a4a1f080 Conversion to YAML: ./windows/security/threat-protection/windows-defender-application-control/applocker/TOC.md 2021-04-22 21:52:20 -07:00
Gary Moore
0d3e545f49 Conversion to YAML: ./windows/security/threat-protection/windows-defender-application-control/TOC.md 2021-04-22 21:12:55 -07:00
jsuther1974
cc0f91a2a4 Update enforce-windows-defender-application-control-policies.md 2021-04-22 16:13:31 -07:00
jsuther1974
612bee84d0 Update merge-windows-defender-application-control-policies.md 2021-04-22 15:12:27 -07:00
jsuther1974
ab3e4157c8 Update merge-windows-defender-application-control-policies.md 2021-04-22 14:21:28 -07:00
jsuther1974
78e750ea3a Update deploy-wdac-policies-with-script.md 2021-04-20 14:54:42 -07:00
jsuther1974
dcd59ea2b5 Fixed merge issues 2021-04-20 14:52:47 -07:00
jsuther1974
f0593e64ea Update windows-defender-application-control-deployment-guide.md 2021-04-20 14:47:57 -07:00
jsuther1974
adbe69a747
Delete PolicyFlow.png 2021-04-20 14:44:31 -07:00
jsuther1974
2eb8ddb238 Fixed more issues from reviewer 2021-04-20 14:42:49 -07:00
jsuther1974
aa9b1e8552 Addressed reviewer issues 2021-04-20 12:24:35 -07:00
jsuther1974
a2fc80d57f Update use-windows-defender-application-control-with-intelligent-security-graph.md 2021-04-19 21:52:02 -07:00
jsuther1974
4b7fc256c7 Fixed Acrolinx issues 2021-04-19 21:44:36 -07:00
jsuther1974
e53fbb5919 Update use-windows-defender-application-control-with-intelligent-security-graph.md 2021-04-16 17:09:41 -07:00